Medibank experienced a high-profile cyberattack where sensitive customer data, including personal and financial information, was compromised. This attack exposed the personal information of customers, leading to significant reputational damage and potential legal consequences for the company.
Source: https://therecord.media/australia-ransomware-victims-must-report-payments
TPRM report: https://scoringcyber.rankiteo.com/company/medibank
"id": "med718053025",
"linkid": "medibank",
"type": "Cyber Attack",
"date": "5/2025",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization's existence"
{'affected_entities': [{'industry': 'Various',
'location': 'Australia',
'name': 'Australian Organizations',
'size': 'Annual turnover greater than AUS $3 million',
'type': 'Business'}],
'description': 'Australia has implemented a new law requiring organizations '
'with an annual turnover greater than AUS $3 million to report '
'ransomware extortion payments to the Australian Signals '
'Directorate (ASD) within 72 hours.',
'motivation': 'Improve visibility over ransomware threats',
'regulatory_compliance': {'regulatory_notifications': 'Australian Signals '
'Directorate (ASD)'},
'response': {'law_enforcement_notified': 'Yes'},
'title': 'Australia Requires Ransomware Victims to Report Extortion Payments',
'type': 'Legislation'}